Privacy Policy
1. Controller
Forschungszentrum Jülich GmbH · Project Quicopt
Institut PGI-12, Wilhelm-Johnen-Straße, 52428 Jülich
Email: info@quicopt.com
This Privacy Policy applies both to the marketing website quicopt.com and to the free evaluation API at try.quicoptapi.pgi.fz-juelich.de (see section 5).
The data protection officer of Forschungszentrum Jülich can be reached at: dsb@fz-juelich.de
2. Hosting of the marketing website
The marketing website quicopt.com is hosted by STRATO AG, Otto-Ostrowski-Straße 7, 10249 Berlin, Germany. When you visit the website, the hosting provider automatically collects server log data, including: IP address, date and time of access, page visited, browser type and operating system. This data is processed solely to ensure the trouble-free operation of the website and is automatically deleted in accordance with the hosting provider's retention periods. This data is not combined with other data sources. Legal basis: Art. 6 (1) (f) GDPR.
3. Contact form (CentralStationCRM)
This website uses a contact form provided by CentralStationCRM GmbH, Gaernerstraße 9, 70184 Stuttgart, Germany (centralstationcrm.de/datenschutz).
When you submit the form, the data you enter (in particular your name, email address, and message) is transmitted to CentralStationCRM servers and stored there to process your inquiry and for potential follow-up questions.
CentralStationCRM processes this data exclusively on our behalf as a data processor pursuant to Art. 28 GDPR. A data processing agreement has been concluded with the provider. The data is not shared with third parties.
Legal basis: Art. 6 (1) (b) GDPR, insofar as your inquiry is related to the initiation or performance of a contract, otherwise Art. 6 (1) (f) GDPR (legitimate interest in the efficient processing of inquiries). The data is deleted after final processing of your inquiry, unless statutory retention obligations apply.
4. Fit-Check form (/audit)
At /audit we offer a short self-assessment ("Fit-Check"). Your answers stay in your browser while you work through the questions; nothing is transmitted to us until you send your contact details at the end.
Data processed. If you submit the form: your email address (required) and, where you provide them, name, company and phone number; your answers to the Fit-Check questions; the parameters of the URL you arrived with (for example campaign parameters such as utm_source); date and time of the submission.
How the submission is processed. Unlike the contact form in section 3, this form is not an embedded third-party widget. Your entries are sent to a script on our own web space at STRATO AG and from there to our CRM system CentralStationCRM (see section 3), where a contact record, a note containing your answers, tags and a follow-up task for our sales contact are created. If that script cannot be reached, the page offers you a mailto link instead; in that case nothing is transmitted until you send the email yourself.
Purpose and legal basis. We use these data to assess whether Quicopt fits your problem and to get back to you about it. Legal basis: Art. 6 (1) (b) GDPR, insofar as your inquiry is related to the initiation of a contract, otherwise Art. 6 (1) (f) GDPR (legitimate interest in the efficient processing of inquiries). The data is deleted after final processing of your inquiry, unless statutory retention obligations apply.
5. Free evaluation API (try.quicoptapi.pgi.fz-juelich.de)
At try.quicoptapi.pgi.fz-juelich.de we operate a free, sign-up-free evaluation API for our optimization methods, made available for evaluation and research purposes. Its use is additionally governed by our Terms of Use.
Hosting and responsibility. The API is operated exclusively on Forschungszentrum Jülich's own infrastructure at the Jülich site. There is no third-party hosting, and data processed via the API is not transmitted to third parties. Let's Encrypt (Internet Security Research Group, USA) is used for TLS certificate issuance; only the domain name and the technical information needed for certificate issuance are transmitted to Let's Encrypt, no user data.
Data processed. On the first, keyless call, the server automatically mints an API key and returns it to the caller once. The server processes:
- a cryptographic hash (SHA-256) of the API key, the key itself is never persisted in clear text;
- the IP address from which a key was minted, to detect and defend against abuse of the free service and to keep it operating securely;
- the submitted optimization model (binary serialized model data);
- the computed result and the solver log, so the caller can retrieve status and result;
- technical metadata (job IDs, timestamps, model class, variable count, content hash) for operational and abuse analysis.
Retention. We retain the data submitted via the API (the optimization model, the computed result and the solver log) for 24 months and may use it during that period to improve future versions of our solvers and services; afterwards it is deleted automatically. Job data (model, result, log) can additionally be deleted by the caller at any time via the client's job-deletion function. The IP address from which a key was minted is retained for 6 months. The hashed API key and the technical metadata are retained for the duration the service is operated, for operational analysis and abuse prevention. On request to the contact address below, we delete all data stored under a given API key.
Content of submitted models. Please do not submit personal, confidential or security-sensitive data as part of an optimization model. The service is not designed for the processing of such data.
Local caching on the caller's machine. The client library holds the issued API key in memory for the session; the documentation shows how to read it back and reuse it. Any copy the caller persists (for example in a file or an environment variable) resides solely on the caller's device; we have no access to it, and it can be deleted at any time.
Legal basis. Art. 6 (1) (f) GDPR (legitimate interest in operating a free evaluation and research service, protecting it against abuse, and improving our solvers and services).
"As-is" service. The free evaluation API is provided without availability, functionality or result guarantees and without any service-level commitment. Liability for indirect damages, consequential damages or lost profits is excluded; otherwise, liability is limited, to the extent permitted by law, to intent and gross negligence.
6. Fonts
This website uses self-hosted fonts. No external font services are used. No data is transmitted to third parties for font rendering.
7. Web analytics (Plausible)
This website uses Plausible, a privacy-friendly, cookieless web analytics service provided by Plausible Insights OÜ, Väike-Ameerika 19, 10129 Tallinn, Estonia. We use it to understand aggregate traffic and usage (such as page views, referring sources, country and device type) in order to improve the website.
Plausible does not use cookies, does not store any information on your device, and does not collect or store personal data. It does not track you across websites or over time and does not create persistent identifiers. All measurement data is aggregated and cannot be traced back to an individual visitor. Your IP address is used only transiently to derive a country and an approximate device type and is never stored.
Plausible processes this data on our behalf as a data processor pursuant to Art. 28 GDPR; the measurement data is hosted on servers located in Germany, so no transfer to a third country takes place. Legal basis: Art. 6 (1) (f) GDPR (legitimate interest in reach and usage analysis). As no cookies are used and no personal data is stored on your device, no consent is required pursuant to § 25 (2) TDDDG. You may object to this processing at any time (Art. 21 GDPR) using the contact details below.
8. Cookies
This website uses cookieless web analytics (see section 7) and does not set any analytics or tracking cookies. The contact form (CentralStationCRM) may set technically necessary session cookies that are required solely for the function of the form and are deleted after closing the browser. Consent is not required for these pursuant to § 25 (2) TDDDG.
9. Your rights
You have the following rights regarding your personal data:
- Right of access (Art. 15 GDPR)
- Right to rectification (Art. 16 GDPR)
- Right to erasure (Art. 17 GDPR)
- Right to restriction of processing (Art. 18 GDPR)
- Right to data portability (Art. 20 GDPR)
- Right to object (Art. 21 GDPR)
To exercise your rights, please contact: info@quicopt.com
You also have the right to lodge a complaint with a data protection supervisory authority. The competent authority for Forschungszentrum Jülich is:
Landesbeauftragte für Datenschutz und Informationsfreiheit Nordrhein-Westfalen
Kavalleriestraße 2–4, 40213 Düsseldorf
www.ldi.nrw.de
10. Currency of this privacy policy
This privacy policy is currently valid (as of July 2026). Due to the ongoing development of our offerings or changes in legal requirements, it may be necessary to update this privacy policy.